AppMilad

First seen
2022-06-01 00:00:00
Origin
IR
Primary motivation
espionage
Sophistication
advanced
Actor type
nation-state
Profile updated
2026-07-07 12:09:15

Targeted industries: government-and-public-sector technology-and-telecommunications

Targeted regions: country_code:ae country_code:sa country_code:ir

Context

AppMilad is an Iranian hacking group that has been identified as the source of a spyware campaign called RatMilad. This spyware is designed to silently infiltrate victims' devices and gather personal and corporate information, including private communications and photos. The group has been distributing the spyware through fake apps and targeting primarily Middle Eastern enterprises.

Reports & references

  • zimpstage.wpengine.com — We Smell A Ratmilad Mobile Spyware (report)

External references